Hi, On Thu, May 31, 2018 at 09:08:16PM +0530, Abhijith PA wrote: > >> +++ procps-3.3.3/debian/patches/CVE-2018-1125.patch 2018-05-30 > >> 16:49:18.000000000 +0000 > >> + } else { > >> + strcpy (cmd, task.cmd); > > this hunk is not present in > > debian/patches/0008-pgrep-Prevent-a-potential-stack-based-buffer-overflo.patch > > from the jessie update. can you explain? > Sorry I couldn't find any hunk.
you are of course right. so nothing to see here, great ;) > > why did you remove that memcpy in > > procps-3.3.3/debian/patches/CVE-2018-1126.patch ? > Missed it. > I have made the changes and new debdiff is attached. ok, cool, thanks! will give it some final short testing now and then upload. -- cheers, Holger
signature.asc
Description: PGP signature